Get in Touch
 Duration 21 hours

Course Outline

Module 1: Introduction and Core Concepts

  • Overview of Microsoft Intune / Endpoint Manager
  • Integration with Configuration Manager (co-management, cloud attach models)
  • Advantages of adopting modern endpoint management strategies
  • Fundamental concepts: devices, applications, data, and users
  • Intune architecture, role definitions, and licensing structures

Module 2: Identity and Access Management

  • Key concepts in Microsoft Entra ID / Azure AD
  • Directory synchronization from on-premises AD to Entra ID (via Azure AD Connect)
  • Device registration types: Azure AD Join and Hybrid AD Join
  • Defining roles, groups, and permissions within Intune
  • Implementing Conditional Access and its synergy with Intune

Module 3: Device Enrollment Processes

  • Enrollment methodologies for Windows, iOS, Android, and macOS
  • Windows Autopilot: underlying concepts, profiles, and workflow processes
  • Automated enrollment using Apple DEP and Android Zero-touch
  • Distinguishing between personal device (BYOD) and corporate device management
  • Differentiating MDM and MAM (Mobile Device Management vs. Mobile Application Management)

Module 4: Configuration and Compliance Frameworks

  • Establishing device compliance policies
  • Creating configuration policies (Configuration Profiles)
  • Enforcing device restrictions and security controls
  • Implementing App Protection Policies
  • Applying conditional access policies driven by compliance status

Module 5: Application Management Strategies

  • Categorizing applications in Intune: Line of Business (LOB), Win32, Microsoft Store, and web apps
  • Cycles of deployment, installation, removal, and updating of applications
  • Protecting application-specific data
  • Managing application policies in relation to corporate data
  • Handling license and assignment management

Module 6: Updates and Patch Management

  • Integrating Windows Update for Business with Intune
  • Defining feature and quality update policies
  • Implementing deployment ring models
  • Tracking and monitoring update status
  • Formulating update strategies for corporate environments

Module 7: Security and Threat Protection

  • Integrating Microsoft Defender for Endpoint with Intune
  • Applying Microsoft security baselines and templates
  • Configuring threat protection measures (antimalware, firewall, etc.)
  • Managing device encryption (BitLocker) and encryption policies
  • Handling certificate management and secure VPN/Wi-Fi profiles

Module 8: Monitoring, Reporting, and Troubleshooting

  • Utilizing dashboards and default reporting tools
  • Analyzing logs and diagnostics (e.g., enrollment errors, policy conflicts)
  • Leveraging support and troubleshooting utilities within Intune
  • Navigating administration portals (device portal, company portal)
  • Configuring alerts and notification systems

Module 9: Advanced Scenarios and Integrations

  • Co-management strategies with Configuration Manager
  • Managing devices without traditional enrollment (“Autopilot for existing devices”)
  • Integration with other Microsoft services (Defender, Azure, Copilot, etc.)
  • Automation techniques using PowerShell and Graph API
  • Developing governance strategies and enterprise-scale structures
  • Applying best practices for design and implementation

Summary and Next Steps

Requirements

  • Working knowledge of Microsoft 365 and Azure infrastructures
  • Practical experience with Windows or mobile device administration
  • Proficiency in organizational IT security frameworks

Target Audience

  • System administrators
  • Specialists in endpoint management
  • IT professionals responsible for enterprise device and security policy oversight

Number of participants


Price per participant

Testimonials (1)

Upcoming Courses

Related Categories